Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Any other people getting hacked?
#61
These guys apparently have cracks for emails too... fml.

Well there seems to be various theories on everything.. all I know for sure is that nexon needs to offer up some account name changes already for free.
Reply
#62
Anyone else notice this is happening in January? After January ended it all blew over?
Reply
#63
Here's the thing. I dont think this can be blamed on nexon. it's our EMAILS getting hacked, leading to our nexon accounts getting hacked. If people should be complaining, it should be to microsoft, yahoo, google or wherever their email clients are set up, not to nexon.

I just dont feel this is actually nexon's fault this time, other than running a game that gives people reasons to hack into someone's email.
Reply
#64
Retalion Wrote:Here's the thing. I dont think this can be blamed on nexon. it's our EMAILS getting hacked, leading to our nexon accounts getting hacked. If people should be complaining, it should be to microsoft, yahoo, google or wherever their email clients are set up, not to nexon.

I just dont feel this is actually nexon's fault this time, other than running a game that gives people reasons to hack into someone's email.
Both my email pw and ms pw are strong, as well as my id being very unusual so I think I'll be ok. Plus I really have nothing of value worth taking. I feel pretty safe
Reply
#65
How are the hackers getting email addresses & account names? I hope the fact that I've never shared either with anyone will keep me a bit safer, it's not like they're hacking every email account on the planet and looking for ones with MS accounts.
Reply
#66
Stereo Wrote:How are the hackers getting email addresses & account names? I hope the fact that I've never shared either with anyone will keep me a bit safer, it's not like they're hacking every email account on the planet and looking for ones with MS accounts.

Well, the email of mine that got hacked was the one I used to use for everything (Sleepywood, Southperry, blog, youtube, etc.) so that was out there, and people know I play ms, so it was a good shot to guess that if they got into my email, they'd get to my ms account.

I dont speak for everyone, but you'd think looking through these forums would produce a lot of email addresses, and with how gmail and all these other emails now offer forwarding and connecting emails and the likes, its not exactly hard to find not just one, but all of someone's email addresses.
Reply
#67
Retalion Wrote:Well, the email of mine that got hacked was the one I used to use for everything (Sleepywood, Southperry, blog, youtube, etc.) so that was out there, and people know I play ms, so it was a good shot to guess that if they got into my email, they'd get to my ms account.

I dont speak for everyone, but you'd think looking through these forums would produce a lot of email addresses, and with how gmail and all these other emails now offer forwarding and connecting emails and the likes, its not exactly hard to find not just one, but all of someone's email addresses.
Then what about the passwords
Reply
#68
Wow.. seriously? i'd punch this guy K.O. if i would ever see this guy irl. what a freaking ASS! so is everyone else in that place... they're trading around hard earned levels and stuff as if its nothing.
''Hey wanna trade this 132 DK for ur 127 NL? this guy has a pac on it Big Grin'' Screw you... =_=


Wow.. i got quite a story to tell but ima make it short and sweet.

Got ahold of a nice account (Thx to .Murder) but couldnt get the pic right.
Used the NX trick and got ahold of the gmail the person was using.
Used the same pass word the dude was using for his Maplestory acc and got in (Flawless victory)
Resetted pic, stripped him completely and by looking on the privatepaste using the first part of the maple login name i found 4 more accounts, well u know what happend next, repeated everything and got even more mezarz!
i've gotten ahold of 4 diff gmail accounts with 1 of them being his main with all his school stuff and other things.
All his gmail acc's were in Hebrew and sure enuff in the settings it said he was from Israel - jerusalem so i changed it to mah default lang and started finding out some juicy pomegranate.
Through his main gmail account i got to his facebook and i saw his pictures ( and some other hot chicks in bikini's, i tried to fap on them but then i realised they were jewish so i immediately lost my b0ner).
The guy looked exactly how you'd expect a mapler, lil fat on the face looked lazy as fk cuz he was sitting in every picture and xtrmely pale... Anyway, he was online on facebook also and i translated his messages through Google translate ( since he was talking in hebrew) im such a sneaky stalker! and yeah he didn't notice pomegranate.
When lurking moar on his main Gmail acc i found a link to his paypal.. i tried out my luck and sure enough.... i was on his MOTH****** PAYPALL!!!! wont say how much he had on it but quite enough to buy some heavy deal of NX.

Instead of getting my ass behind a proxy and raeping everything i instead just took ownership of all his highlevel accounts and changed them completely to my details to test out risky hacks and warned his dumb ass for using the exact same password for all his accounts including Jewtube.
He was scared and i laughed my fkng ass off for real! but that's a story for another time..

So whuts the moral??

Be humane (Rofl u serious?) but strict. I showed his ass who's boss by taking away all his grinding hours on maple and went humane on him by warning him others might not be so
forgiving on his other personal accounts.

Anyway this pomegranate is fun as fk and ill be sure to try to do the same to other accounts xD THX a TON .Murder. ( PS when u gonna release the 40 k acc's u've been keeping behind? )

EDIT: [Removed]
Reply
#69
for the nx trick to finding lost emails, u could find it then press "change email" on that site lol mine doesnt show the one used to create my main acc anymore (:
Reply
#70
Securing an e-mail account should be relatively simple if you know what you are doing, yet some people don't realize what they do can easily compromise them.

1. Never give out the e-mail address you use as your Nexon ID.
2. Never use an e-mail client like Thunderbird or Outlook.
3. Change the passwords for e-mail accounts every 3 months.
4. Never have one e-mail set up to check another or forward mail to.
5. Stick to trusted e-mail servers like Yahoo, MSN, and Google.
6. Set up your web browser to delete history, cookies, etc. on closing.
7. If your web browser has a password insertion feature, enable it's master password lock out.
8. Use a Firewall at all times if it's hardware (router) based or software based. (If you need one check out Comodo Internet Security. It's free. Windows Firewall is okay but often hard to understand.)
9. Use anti-malware software that has an active scanner like Spybot Search & Destroy's TeaTimer feature and S&D web browser plug-in.

I bet anything some of those people who do get hacked from time to time and can't figure out why, have done something ill advised.
Reply
#71
I don't think many (if any) of the people in that thread had a way to actually crack emails. With the log in ID and password they can see the connected email and the victims probably used the same password for their nexon account and email. I took a look at the list and was surprised to see an account that my friend gave me was on there but he was never hacked and the info was changed during the forced password change.
Reply
#72
Yeah reading that thread made me feel a little sick... this whole thing just brings back bad bad memories for me and I'm sure many others.

I really wish nexon would provide a way to change the account login name.
Reply
#73
Again? Really?

Already had the displeasure of having a YEAR old ticket about my previous breach during last year's scare closed under the "YOU GOTTA SUBMIT THIS ON THE OTHER ACCOUNT, WE CAN'T HELP YOU ON THIS ONE" clause. Even had the maple points for it. Getting hacked again will just be it for me.
Reply
#74
Duelman Wrote:Yeah reading that thread made me feel a little sick... this whole thing just brings back bad bad memories for me and I'm sure many others.

I really wish nexon would provide a way to change the account login name.

.murder Wrote:Ya'll are vicious. 1.7k views and people benefiting from this but no 'Thanks'. Makes me not want to spill the other 40k accounts I have

we will have to wait and see what happens lol.

I checked the list, searched for any of my accounts, didnt find any Biggrin

but it seems that all accounts were made before 2007
Reply
#75
That'd be alot of us right? I hope that is just a different list, and not the one that had last years accounts on them.

I will just have to keep a close eye on my stuff and look for warning signs. It figures they would wait a year so our item locks expire. >.<
Reply
#76
Rumor originally had it that the original list was accounts made from January 1, 2007 till the 2010 incident involving a hacker using an SQL injection to break into the Nexon database. Accounts made before that time period were stored in a separate database or possibly a separate server that did not get tapped into.

What I'm curious about was why Nexon originally made no attempt to encrypt not only the server's database, but also use encryption within the files to turn actual plaintext into cyphertext that could not just be read without an unpublished internally known proprietary algorithm of a high level bit rate like 256 bit or higher levels.
Reply
#77
Edit: just noticed the huge flaw in my line of thought. lol ignore this Tongue
Reply
#78
and yet nexon hasn't done anything about the 2010 hackings... except leave an autospammer telling me they haven't forgotten me! Big Grin
I love how the TC in that one forum is all "not a single thank-you lolol maybe i won't share my other 40k accounts" and suddenly he gets tons of thank-yous xd
meh, my account(s) weren't on that list. :|
Reply
#79
[quote=Jamie_Kurosawa]Rumor originally had it that the original list was accounts made from January 1, 2007 till the 2010 incident involving a hacker using an SQL injection to break into the Nexon database. Accounts made before that time period were stored in a separate database or possibly a separate server that did not get tapped into.

I wish those dates were accurate. My account was older than Jan 2007.
I got nailed shortly after Arans came out - In Dec 2009 to be more precise.
No email compromise, no keylogger, no pin/pw reset and none of my forum emails are the same as my Maple email. I think I posted in one of the threads here at the time.

I got the 10k nx thanks for your patience, and we are working out a compensation package email
I still get the reminder "We havent forgotten you " once a month.

To add to your firefox suggestion, add no-script to the "gotta haves"
It actually pointed out and blocked a cross site scripting attempt within Nexon's own site --- when filing a ticket !!!
Reply
#80
My email account for my main no longer exists. lol So I hope they have fun getting to him.
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)